๐จ Official Security Alert: Axios npm Supply Chain Attack ๐จ
We are aware of a supply chain attack targeting the Axios npm package, where malicious versions were published via a compromised maintainer account, deploying cross-platform remote access trojans.
๐ฆ Affected versions:
Axios: 1.14.1, 0.30.4
plain-crypto-js: 4.2.1 (malicious dependency)
๐ฅ๏ธ Affected software types:
Electron desktop applications
Web frontend projects (Vue, React, Angular)
Node.js backend services
CI/CD pipelines
Cryptocurrency-related projects
โ ๏ธ Current status:
The malicious versions have been identified and removed from npm.
Developers are advised to check their dependency versions immediately.
๐ Indicators of Compromise (IOCs):
C2 Domains: https://t.co/FfXSjkLYEo, https://t.co/LGtLQZauj9
C2 IPs: 142.11.206.73, 142.11.196.73, 142.11.199.73
Suspicious files:
- Windows: C:\ProgramData\wt.exe, C:\ProgramData\system.bat, %TEMP%\6202033.ps1
- macOS: /Library/Caches/com.apple.act.mond, /tmp/.XXXXXX.scpt
- Linux: /tmp/ld.py, /tmp/.%UID%
Registry persistence: HKCU\Software\Microsoft\Windows\CurrentVersion\Run โ MicrosoftUpdate
๐ก๏ธ Recommended actions:
Check dependencies: npm list axios or inspect package-lock.json
Remove malicious versions and upgrade to official safe versions
Delete suspicious files and terminate related processes
Block C2 domains and IPs at network level
Restart host after cleanup
We will provide timely updates as the investigation progresses.
For security, always verify package versions and only install from trusted sources.
#Axios #SupplyChain #npm #CryptoSecurity #chainray #chainraylabs
๐จ Official Security Alert: ResolvLabs USR Stablecoin Incident ๐จ
We are aware of a temporary USR price disruption on March 22, 2026, due to suspected exploitation of the USR minting mechanism.
Timeline of events (UTC):
1๏ธโฃ 03/22 01:50:59 โ Malicious address 0x04A288...13caEd initiated minting. Completed at 02:21:35.
2๏ธโฃ 03/22 03:02:11 โ Malicious address 0x68230E...89A4Af initiated minting. Completed at 03:41:47.
3๏ธโฃ 03/22 03:20:23 โ Malicious address 0x04A288...13caEd initiated minting. Completed at 03:32:47.
4๏ธโฃ 03/22 03:41:23 โ Malicious address 0x04A288...13caEd initiated minting. Completed at 03:41:47.
๐ฐ Impact:
Approx. 80 million USR temporarily affected.
USR price briefly dropped to $0.257 (-74.2%), now recovering to $0.7847.
One additional transaction from 0x68230E...89A4Af at 04:14:47 failed; funds automatically returned, no additional minting occurred.
โ ๏ธ Current status:
The ResolvLabs team is investigating the root cause.
USR minting paused until security review is complete.
No user funds were permanently lost.
As of now, the total value of the hacker's address is approximately $1,788,600.
We will provide timely updates as the investigation progresses.
For security, always verify transactions on-chain and only interact with official smart contract addresses.
#ResolvLabs #USR #CryptoSecurity #Stablecoin
๐ ChainRay is proud to release the "2025 Blockchain Security & AML In-Depth Investigation Report".
2025 marked the shift from "Wild Growth" to "Institutional Compliance" in Web3. ๐โ๏ธ
Our latest report analyzes the critical pivots:
๐ก๏ธ Security: A massive shift from code exploits to "Cognitive Intrusion" (AI deepfakes, private key leaks & social engineering).
๐ธ AML: The rise of "Industrialized" laundering chains involving USDT, cross-chain hopping, and AI mule factories.
๐ Regulation: The move to strict enforcement across the US, EU, and China.
Explore our full data analysis and exclusive case studies ๐ https://t.co/3xtcWXjuIv
#ChainRay #Web3 #BlockchainSecurity #AML #CyberSecurity #CryptoRegulation